Organizational Control: Security Alerts, Advisories, And Directives
Control ID: SI-5 Security Alerts, Advisories, And Directives | Family: System and Information Integrity | Source: NIST 800-53r4 |
Control: The organization:
|
||
Supplemental Guidance: The United States Computer Emergency Readiness Team (US-CERT) generates security alerts and advisories to maintain situational awareness across the federal government. Security directives are issued by OMB or other designated organizations with the responsibility and authority to issue such directives. Compliance to security directives is essential due to the critical nature of many of these directives and the potential immediate adverse effects on organizational operations and assets, individuals, other organizations, and the Nation should the directives not be implemented in a timely manner. External organizations include, for example, external mission/business partners, supply chain partners, external service providers, and other peer/supporting organizations. Related Controls: SI-2 |
||
Control Enhancements:
(1) Security Alerts, Advisories, And Directives | Automated Alerts And Advisories The organization employs automated mechanisms to make security alert and advisory information available throughout the organization. Supplemental Guidance: The significant number of changes to organizational information systems and the environments in which those systems operate requires the dissemination of security-related information to a variety of organizational entities that have a direct interest in the success of organizational missions and business functions. Based on the information provided by the security alerts and advisories, changes may be required at one or more of the three tiers related to the management of information security risk including the governance level, mission/business process/enterprise architecture level, and the information system level. Related Controls: N/A |
||
References: NIST Special Publication 800-40. | ||
Mechanisms:
|
||
Protocol Implementation Conformance Statements: N/A |